Wacom's vulnerability profile centers on its driver and installer software for digitizer tablets and pen displays, which reach a prominent installed base across creative and design workflows. The recurring exposure recurs through file-system and command-execution weaknesses—including improper link resolution, argument injection, and incorrect permission assignment—that reflect the privileged context in which driver software operates on end-user systems. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wacom over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-5012HIGH An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the startProcess command. The command takes a user-supplied | Oct 24, 2019 | 7.8 | 25 | NO | NO |
CVE-2022-38604HIGH Wacom Driver 6.3.46-1 for Windows and lower was discovered to contain an arbitrary file deletion vulnerability. | Apr 11, 2023 | 7.3 | 24 | NO | NO |
CVE-2023-32162HIGH Wacom Drivers for Windows Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected ins | Sep 6, 2023 | 7.8 | 23 | NO | NO |
CVE-2019-5013HIGH An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the start/stopLaunchDProcess command. The command takes a u | Oct 24, 2019 | 7.8 | 23 | NO | NO |
CVE-2024-12552HIGH Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations o | Dec 13, 2024 | 7.8 | 22 | NO | NO |
CVE-2024-9766HIGH Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations o | Nov 22, 2024 | 7.8 | 21 | NO | NO |
CVE-2022-43293MEDIUM Wacom Driver 6.3.46-1 for Windows was discovered to contain an arbitrary file write vulnerability via the component \Wacom\Wacom_Tablet.exe. | Apr 11, 2023 | 5.9 | 21 | NO | NO |
CVE-2023-32163HIGH Wacom Drivers for Windows Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Wac | Sep 6, 2023 | 7.8 | 20 | NO | NO |
CVE-2023-27529HIGH Wacom Tablet Driver installer prior to 6.4.2-1 (for macOS) contains an improper link resolution before file access vulnerability. When a user is tricked to execute a small maliciou | May 25, 2023 | 7.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wacom.
Media articles that mention a CVE ID that affects a product developed by Wacom — matched by CVE ID, not by vendor name.